A privilege escalation issue existed in FileMaker Server, potentially exposing sensitive information to front-end websites when signed in to the Admin Console with an administrator role. This issue has been fixed in FileMaker Server 20.3.1 by reducing the information sent in requests.
[
{
"cpes": [
"cpe:2.3:a:claris:filemaker_server:*:*:*:*:*:*:*:*"
],
"vendor": "claris",
"product": "filemaker_server",
"versions": [
{
"status": "affected",
"version": "0",
"lessThan": "20.3.1",
"versionType": "custom"
}
],
"defaultStatus": "unknown"
}
]